Splunk Administration

Splunk Administration
Category Activity
kris2000
Hello everyone, We have to take care of a migration scenario where old events needs to be re-indexed and "re-process...
by kris2000 Explorer in Installation 06-22-2010
0 4
0
4
hulahoop
When setting up an indexing server to receive data from Splunk forwarders, are there good technical or management rea...
by hulahoop Splunk Employee Splunk Employee in Getting Data In 06-22-2010
1 3
1
3
edfisher
I got this error after months of issue free logons to Splunk. After checking everything on the client side, I finally...
by edfisher Explorer in Security 06-21-2010
1 1
1
1
oreoshake
I certainly have cookies enabled and a second attempt to login works every time. Any ideas? Update: Login Page: /en...
by oreoshake Communicator in Security 06-21-2010
0 4
0
4
mzorzi
In the splunkd.log I see this error message: 06-02-2010 09:42:31.344 INFO TailingProcessor - failed to ins...
by mzorzi Splunk Employee Splunk Employee in Getting Data In 06-21-2010
3 6
3
6
mmletzko
I have the lea loggrabber for Checkpoint setup but its not quite working...I am missing something. When I execute th...
by mmletzko Path Finder in Getting Data In 06-21-2010
0 3
0
3
Genti
@ a customers site: " Splunk was indexing udp:514 data until this Wednesday when it stopped altogether. Using TCPDump...
by Genti Splunk Employee Splunk Employee in Getting Data In 06-18-2010
0 1
0
1
Simeon
I have an installation of Splunk that consists of multiple indexers being searched by a distributed search head. Cur...
by Simeon Splunk Employee Splunk Employee in Deployment Architecture 06-18-2010
1 3
1
3
kris2000
Hello everyone , We are planning to have a Splunk setup as below: LightForwarders -> Forwarders -> Indexers Assumi...
by kris2000 Explorer in Getting Data In 06-18-2010
1 2
1
2
Dan
Multiple indexes: I had mistakenly created indexes X and Y, and now I want to merge the two data sets. Multiple inde...
by Dan Splunk Employee Splunk Employee in Deployment Architecture 06-18-2010
1 1
1
1
arturo
Guys : after checking documentation, and available answers on the topic, but nothing found, I would like to ask what ...
by arturo Explorer in Installation 06-18-2010
3 3
3
3
Genti
If i do a search within the unix app such as this: tag="access" i get plenty of results. If i perform the same search...
by Genti Splunk Employee Splunk Employee in Knowledge Management 06-17-2010
1 3
1
3
zadunn
Hey all! I am trying to understand splunk a little better. I am trying to setup a search head and two indexers. I ...
by zadunn Engager in Getting Data In 06-17-2010
1 1
1
1
the_wolverine
I keep getting bitten by license violations and its always something new that is triggering this. Is there some way ...
by the_wolverine Champion in Installation 06-17-2010
1 2
1
2
ram_malhotra
I have archives on my Splunk Spark Solaris 4.0.7 installation that I would like to be restored on a new Splunk X86 Li...
by ram_malhotra New Member in Installation 06-17-2010
0 1
0
1
cfergus
We are using Apache HTTP to proxy to Splunk. The short version is that we extract creds and put them in the "Remote-...
by cfergus Path Finder in Security 06-17-2010
0 4
0
4
johndursplk
I downloaded and installed the Cisco Firewall Add-On and it properly renamed the sourcetype of my ASA, FWSM and PIX f...
by johndursplk Engager in Getting Data In 06-17-2010
1 3
1
3
jsharvina
i need to index a bunch of xml logs that have an extension of .stats i was able to just upload one of them from the ...
by jsharvina New Member in Getting Data In 06-16-2010
0 3
0
3
maverick
I currently have a 1GB/day Splunk license and I need to have it split up into a smaller 200MB, 300MB, and a 500MB lic...
by maverick Splunk Employee Splunk Employee in Getting Data In 06-16-2010
1 1
1
1
Jaci
I want to upgrade a Splunk device version 3.4.5 build 47883 to version 4.0.11 build 79031. Can I do a direct upgrade...
by Jaci Splunk Employee Splunk Employee in Installation 06-15-2010
1 1
1
1
oreoshake
Do you think splunk could scale to 1 petabyte a day? What is the amount indexed by the largest installation out ther...
by oreoshake Communicator in Getting Data In 06-15-2010
1 2
1
2
dinh
Here's one possible solution I think would work if the there are constant events coming in from each source. search ...
by dinh Path Finder in Getting Data In 06-14-2010
5 6
5
6
mawwx3
I followed the directions for configuring custom timestamps for events with multiple timestamps but I am not getting ...
by mawwx3 Explorer in Getting Data In 06-14-2010
1 6
1
6
jrodman
When i try to train splunk to automatically recognize files of a given type, I get the following: # $SPLUNK_HOME/bin...
by jrodman Splunk Employee Splunk Employee in Getting Data In 06-14-2010
0 1
0
1
kkuminsky
If I specify pollPeriod parameter for fschange, is it supposed to generate an event each time it checks file for chan...
by kkuminsky Path Finder in Getting Data In 06-14-2010
0 2
0
2
Splunk Learning

Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.

Get Started

Announcements
Register for Upcoming Live Tech Talks! Security, Observability, Platform and App Developer Editions are held every month.

How digitally resilient are you? Take a quick Digital Resilience Assessment to find out if you're prepared for disruption!
Get Updates on the Splunk Community!

Index This | What travels the world but is also stuck in place?

April 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Discover New Use Cases: Unlock Greater Value from Your Existing Splunk Data

Realizing the full potential of your Splunk investment requires more than just understanding current usage; it ...

Continue Your Journey: Join Session 2 of the Data Management and Federation Bootcamp ...

As data volumes continue to grow and environments become more distributed, managing and optimizing data ...
Top Karma Authors